Documentation ¶
Index ¶
- Constants
- func TsigGenerate(m *dns.Msg, secret, requestMAC string, timersOnly bool) ([]byte, string, error)
- func TsigGenerateByAlgorithm(m *dns.Msg, cb TsigGenerateFn, name, secret, requestMAC string, ...) ([]byte, string, error)
- func TsigVerify(msg []byte, secret, requestMAC string, timersOnly bool) error
- func TsigVerifyByAlgorithm(msg []byte, cb TsigVerifyFn, name, secret, requestMAC string, timersOnly bool) error
- type Client
- type Config
- type Conn
- type TSIG
- type TsigGenerateFn
- type TsigVerifyFn
Constants ¶
const (
TSIGGSS = tsig.GSS
)
Variables ¶
This section is empty.
Functions ¶
func TsigGenerate ¶
TsigGenerate fills out the TSIG record attached to the message. The message should contain a "stub" TSIG RR with the algorithm, key name (owner name of the RR), time fudge (defaults to 300 seconds) and the current time The TSIG MAC is saved in that Tsig RR. When TsigGenerate is called for the first time requestMAC is set to the empty string and timersOnly is false. If something goes wrong an error is returned, otherwise it is nil.
func TsigGenerateByAlgorithm ¶
func TsigGenerateByAlgorithm(m *dns.Msg, cb TsigGenerateFn, name, secret, requestMAC string, timersOnly bool) ([]byte, string, error)
TsigGenerateByAlgorithm fills out the TSIG record attached to the message using a callback to implement the algorithm-specific generation. The message should contain a "stub" TSIG RR with the algorithm, key name (owner name of the RR), time fudge (defaults to 300 seconds) and the current time The TSIG MAC is saved in that Tsig RR. When TsigGenerate is called for the first time requestMAC is set to the empty string and timersOnly is false. If something goes wrong an error is returned, otherwise it is nil.
func TsigVerify ¶
TsigVerify verifies the TSIG on a message. If the signature does not validate err contains the error, otherwise it is nil.
func TsigVerifyByAlgorithm ¶
func TsigVerifyByAlgorithm(msg []byte, cb TsigVerifyFn, name, secret, requestMAC string, timersOnly bool) error
TsigVerifyByAlgorithm verifies the TSIG on a message using a callback to implement the algorithm-specific verification. If the signature does not validate err contains the error, otherwise it is nil.
Types ¶
type Client ¶
type Conn ¶
func (*Conn) ReadMsg ¶
ReadMsg reads a message from the connection co. If the received message contains a TSIG record the transaction signature is verified. This method always tries to return the message, however if an error is returned there are no guarantees that the returned message is a valid representation of the packet read.
func (*Conn) SetupTSIG ¶
func (co *Conn) SetupTSIG(keyname string, generate TsigGenerateFn, verify TsigVerifyFn)
type TSIG ¶
TSIG is the RR the holds the transaction signature of a message. See RFC 2845 and RFC 4635.